SHA-512 isn't really a good option to move to either. Yes, it's a bit more complex than NTLM, but it's not anywhere near as time consuming as the algorithms designed for passwords like PBKDF2 (you can use SHA-512 as the cipher if you like) or scrypt.